Authentication
Verify an Agent Access token without requiring an unrelated product scope.
Base URL: https://app.gavana.ai/api/canvas-agent/v1 · Authentication: HTTP bearer, token format cba_<token-id>.<secret>
Operations
| Operation | Purpose | Scopes |
|---|---|---|
GET /auth/status | Verify the current Agent Access token | none |
GET /auth/status
Verify the current Agent Access token
Authenticates the token and reports its granted scopes without requiring canvas, asset, image, or job access.
- Operation id:
getAuthStatus - Scopes: Requires a valid Agent Access token; no additional product scope.
- CLI equivalent:
gavana auth status
Responses
| Status | Payload | Meaning |
|---|---|---|
200 | AuthStatus | The authenticated identity and Agent Access scopes. No token secret is returned. |
default | ErrorResponse | A stable machine-readable error. The response always includes X-Request-ID. |
200 response body
| Field | Type | Required | Notes |
|---|---|---|---|
authType | string | Yes | One of agent, firebase. |
email | string (email) | Yes | — |
scopes | array of string | null | Yes | — |
agentTokenId | string (uuid) | No | — |
agentLabel | string | No | max length 80. |
Example
curl "https://app.gavana.ai/api/canvas-agent/v1/auth/status" \
-H "Authorization: Bearer $GAVANA_AGENT_TOKEN"Errors
Every failure uses the shared error envelope described in Errors and X-Request-ID. The response always carries X-Request-ID; share that value with support instead of the request payload.
Last updated on